About the Cyber Threat Intelligence Course
Program Highlights
Course Curriculum
Module 1: CTI Fundamentals & Lifecycle
- Define Cyber Threat Intelligence (CTI) and its strategic importance.
- Distinguish between strategic, operational, tactical, and technical intelligence types.
- Outline the complete Threat Intelligence Lifecycle from direction to dissemination.
- Identify various threat actors, including nation-states, cybercriminals, and hacktivists.
Module 2: Threat Actors & Open-Source Intelligence (OSINT)
- Investigate threat actors’ motivations and capabilities.
- Utilize fundamental Open-Source Intelligence (OSINT) techniques.
- Operate OSINT tools such as WHOIS, Shodan, Maltego, and Google Dorks.
- Perform hands-on data gathering from public intelligence sources.
Module 3: Advanced Threat Data Collection & Processing
- Identify diverse threat intelligence sources, including open-source feeds, dark web monitoring, and internal SIEM/EDR logs.
- Implement effective passive and active data collection techniques.
- Address legal and ethical considerations in intelligence gathering.
- Structure and normalize threat data using formats like STIX/TAXII, JSON, and CSV.
Module 4: Threat Analysis, Malware & Attribution
- Apply advanced threat analysis techniques, including pattern recognition and correlation.
- Identify Tactics, Techniques, and Procedures (TTPs) of adversaries.
- Conduct static and dynamic malware analysis using sandboxing tools like Hybrid Analysis and ANY.RUN.
- Understand the complexities and challenges of threat attribution.
Module 5: Operational CTI Integration & Sharing
- Facilitate threat intelligence sharing through ISACs and established standards like STIX/TAXII and OpenIOC.
- Integrate CTI feeds into Security Information and Event Management (SIEM) systems (e.g., Splunk, IBM QRadar).
- Automate threat detection and response using Security Orchestration, Automation, and Response (SOAR) platforms.
- Configure a SIEM in a lab activity to ingest threat feeds and generate alerts.
Module 6: Threat Hunting, Emerging Trends & Capstone
- Develop and apply YARA rules for custom threat detection.
- Investigate emerging trends in CTI, including AI/ML applications and cloud environment intelligence.
- Participate in a final capstone project involving a simulated cyber incident scenario.
- Collect relevant intelligence, analyze attack TTPs, and produce a threat report during the capstone.
Tools, Techniques, or Platforms Covered
Shodan
Maltego
Google Dorks
MISP
ThreatConnect
Recorded Future
Hybrid Analysis
ANY.RUN
Splunk
Real-World Applications
- Apply CTI for Security Operations skills directly to academic research, thesis work, and publications
- Build a professional portfolio showcasing practical Cybersecurity competencies
- Solve industry-relevant problems using CTI for Security Operations methodologies and tools
- Contribute to open-source projects and collaborative research in Cybersecurity
- Prepare for competitive examinations, interviews, and professional certifications in Cybersecurity
Who Should Attend & Prerequisites
- Students pursuing degrees in Cybersecurity, science, engineering, or related disciplines
- Working professionals seeking to upskill or transition into Cybersecurity roles
- Researchers and academicians looking to adopt modern techniques in Cybersecurity
- Entrepreneurs, freelancers, and self-learners interested in practical Cybersecurity knowledge
Prerequisites: No prior experience in Cybersecurity is required. Basic computer literacy and a stable internet connection are sufficient. This course is designed to be beginner-friendly.






